password_store_x.cc revision 4e180b6a0b4720a9b8e9e959a882386f690f08ff
15821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// Copyright (c) 2012 The Chromium Authors. All rights reserved.
25821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// Use of this source code is governed by a BSD-style license that can be
35821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// found in the LICENSE file.
45821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
55821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "chrome/browser/password_manager/password_store_x.h"
65821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
75821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include <algorithm>
85821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include <map>
95821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include <vector>
105821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
115821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "base/bind.h"
125821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "base/logging.h"
132a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)#include "base/prefs/pref_service.h"
145821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "base/stl_util.h"
157dbb3d5cf0c15f500944d211057644d6a2f37371Ben Murdoch#include "chrome/browser/chrome_notification_types.h"
165821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "chrome/browser/password_manager/password_store_change.h"
175821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "chrome/common/pref_names.h"
182a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)#include "components/user_prefs/pref_registry_syncable.h"
195821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "content/public/browser/browser_thread.h"
205821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#include "content/public/browser/notification_service.h"
215821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
2258537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)using autofill::PasswordForm;
235821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)using content::BrowserThread;
245821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)using std::vector;
255821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
265821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)PasswordStoreX::PasswordStoreX(LoginDatabase* login_db,
275821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                               Profile* profile,
285821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                               NativeBackend* backend)
295821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    : PasswordStoreDefault(login_db, profile),
305821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      backend_(backend), migration_checked_(!backend), allow_fallback_(false) {
315821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
325821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
335821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)PasswordStoreX::~PasswordStoreX() {}
345821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
355821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void PasswordStoreX::AddLoginImpl(const PasswordForm& form) {
365821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  CheckMigration();
375821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  if (use_native_backend() && backend_->AddLogin(form)) {
385821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    PasswordStoreChangeList changes;
395821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    changes.push_back(PasswordStoreChange(PasswordStoreChange::ADD, form));
405821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    content::NotificationService::current()->Notify(
415821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)        chrome::NOTIFICATION_LOGINS_CHANGED,
425821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)        content::Source<PasswordStore>(this),
435821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)        content::Details<PasswordStoreChangeList>(&changes));
445821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    allow_fallback_ = false;
455821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  } else if (allow_default_store()) {
465821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    PasswordStoreDefault::AddLoginImpl(form);
475821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
485821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
495821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
505821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void PasswordStoreX::UpdateLoginImpl(const PasswordForm& form) {
515821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  CheckMigration();
525821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  if (use_native_backend() && backend_->UpdateLogin(form)) {
535821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    PasswordStoreChangeList changes;
545821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    changes.push_back(PasswordStoreChange(PasswordStoreChange::UPDATE, form));
555821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    content::NotificationService::current()->Notify(
565821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)        chrome::NOTIFICATION_LOGINS_CHANGED,
575821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)        content::Source<PasswordStore>(this),
585821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)        content::Details<PasswordStoreChangeList>(&changes));
595821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    allow_fallback_ = false;
605821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  } else if (allow_default_store()) {
615821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    PasswordStoreDefault::UpdateLoginImpl(form);
625821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
635821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
645821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
655821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void PasswordStoreX::RemoveLoginImpl(const PasswordForm& form) {
665821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  CheckMigration();
675821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  if (use_native_backend() && backend_->RemoveLogin(form)) {
685821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    PasswordStoreChangeList changes;
695821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    changes.push_back(PasswordStoreChange(PasswordStoreChange::REMOVE, form));
705821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    content::NotificationService::current()->Notify(
715821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)        chrome::NOTIFICATION_LOGINS_CHANGED,
725821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)        content::Source<PasswordStore>(this),
735821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)        content::Details<PasswordStoreChangeList>(&changes));
745821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    allow_fallback_ = false;
755821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  } else if (allow_default_store()) {
765821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    PasswordStoreDefault::RemoveLoginImpl(form);
775821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
785821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
795821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
805821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void PasswordStoreX::RemoveLoginsCreatedBetweenImpl(
815821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const base::Time& delete_begin,
825821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    const base::Time& delete_end) {
835821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  CheckMigration();
845821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  vector<PasswordForm*> forms;
855821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  if (use_native_backend() &&
865821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      backend_->GetLoginsCreatedBetween(delete_begin, delete_end, &forms) &&
875821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      backend_->RemoveLoginsCreatedBetween(delete_begin, delete_end)) {
885821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    PasswordStoreChangeList changes;
895821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    for (vector<PasswordForm*>::const_iterator it = forms.begin();
905821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)         it != forms.end(); ++it) {
915821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      changes.push_back(PasswordStoreChange(PasswordStoreChange::REMOVE,
925821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                            **it));
935821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    }
944e180b6a0b4720a9b8e9e959a882386f690f08ffTorne (Richard Coles)    LogStatsForBulkDeletion(changes.size());
955821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    content::NotificationService::current()->Notify(
965821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)        chrome::NOTIFICATION_LOGINS_CHANGED,
975821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)        content::Source<PasswordStore>(this),
985821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)        content::Details<PasswordStoreChangeList>(&changes));
995821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    allow_fallback_ = false;
1005821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  } else if (allow_default_store()) {
1015821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    PasswordStoreDefault::RemoveLoginsCreatedBetweenImpl(delete_begin,
1025821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                                                         delete_end);
1035821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
1045821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  STLDeleteElements(&forms);
1055821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
1065821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
1075821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)namespace {
1085821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)struct LoginLessThan {
1095821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  bool operator()(const PasswordForm* a, const PasswordForm* b) {
1105821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    return a->origin < b->origin;
1115821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
1125821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)};
1135821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}  // anonymous namespace
1145821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
1155821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void PasswordStoreX::SortLoginsByOrigin(NativeBackend::PasswordFormList* list) {
1165821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  // In login_database.cc, the query has ORDER BY origin_url. Simulate that.
1175821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  std::sort(list->begin(), list->end(), LoginLessThan());
1185821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
1195821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
1202a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)void PasswordStoreX::GetLoginsImpl(
12158537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)    const autofill::PasswordForm& form,
1222a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)    const ConsumerCallbackRunner& callback_runner) {
1235821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  CheckMigration();
12458537e28ecd584eab876aee8be7156509866d23aTorne (Richard Coles)  std::vector<autofill::PasswordForm*> matched_forms;
1252a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)  if (use_native_backend() && backend_->GetLogins(form, &matched_forms)) {
1262a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)    SortLoginsByOrigin(&matched_forms);
1272a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)    callback_runner.Run(matched_forms);
1285821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    // The native backend may succeed and return no data even while locked, if
1295821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    // the query did not match anything stored. So we continue to allow fallback
1305821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    // until we perform a write operation, or until a read returns actual data.
1312a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)    if (matched_forms.size() > 0)
1325821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      allow_fallback_ = false;
1335821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  } else if (allow_default_store()) {
1342a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)    DCHECK(matched_forms.empty());
1352a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)    PasswordStoreDefault::GetLoginsImpl(form, callback_runner);
1365821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  } else {
1375821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    // The consumer will be left hanging unless we reply.
1382a99a7e74a7f215066514fe81d2bfa6639d9edddTorne (Richard Coles)    callback_runner.Run(matched_forms);
1395821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
1405821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
1415821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
1425821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void PasswordStoreX::GetAutofillableLoginsImpl(GetLoginsRequest* request) {
1435821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  CheckMigration();
1445821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  if (use_native_backend() &&
1455821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      backend_->GetAutofillableLogins(&request->value)) {
1465821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    SortLoginsByOrigin(&request->value);
1475821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    ForwardLoginsResult(request);
1485821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    // See GetLoginsImpl() for why we disallow fallback conditionally here.
1495821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    if (request->value.size() > 0)
1505821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      allow_fallback_ = false;
1515821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  } else if (allow_default_store()) {
1525821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    PasswordStoreDefault::GetAutofillableLoginsImpl(request);
1535821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  } else {
1545821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    // The consumer will be left hanging unless we reply.
1555821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    ForwardLoginsResult(request);
1565821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
1575821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
1585821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
1595821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void PasswordStoreX::GetBlacklistLoginsImpl(GetLoginsRequest* request) {
1605821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  CheckMigration();
1615821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  if (use_native_backend() &&
1625821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      backend_->GetBlacklistLogins(&request->value)) {
1635821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    SortLoginsByOrigin(&request->value);
1645821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    ForwardLoginsResult(request);
1655821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    // See GetLoginsImpl() for why we disallow fallback conditionally here.
1665821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    if (request->value.size() > 0)
1675821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      allow_fallback_ = false;
1685821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  } else if (allow_default_store()) {
1695821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    PasswordStoreDefault::GetBlacklistLoginsImpl(request);
1705821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  } else {
1715821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    // The consumer will be left hanging unless we reply.
1725821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    ForwardLoginsResult(request);
1735821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
1745821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
1755821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
1765821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)bool PasswordStoreX::FillAutofillableLogins(vector<PasswordForm*>* forms) {
1775821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  CheckMigration();
1785821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  if (use_native_backend() && backend_->GetAutofillableLogins(forms)) {
1795821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    // See GetLoginsImpl() for why we disallow fallback conditionally here.
1805821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    if (forms->size() > 0)
1815821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      allow_fallback_ = false;
1825821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    return true;
1835821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
1845821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  if (allow_default_store())
1855821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    return PasswordStoreDefault::FillAutofillableLogins(forms);
1865821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  return false;
1875821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
1885821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
1895821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)bool PasswordStoreX::FillBlacklistLogins(vector<PasswordForm*>* forms) {
1905821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  CheckMigration();
1915821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  if (use_native_backend() && backend_->GetBlacklistLogins(forms)) {
1925821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    // See GetLoginsImpl() for why we disallow fallback conditionally here.
1935821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    if (forms->size() > 0)
1945821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      allow_fallback_ = false;
1955821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    return true;
1965821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
1975821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  if (allow_default_store())
1985821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    return PasswordStoreDefault::FillBlacklistLogins(forms);
1995821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  return false;
2005821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
2015821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
2025821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void PasswordStoreX::CheckMigration() {
2035821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  DCHECK(BrowserThread::CurrentlyOn(BrowserThread::DB));
2045821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  if (migration_checked_ || !backend_.get())
2055821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    return;
2065821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  migration_checked_ = true;
2075821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  ssize_t migrated = MigrateLogins();
2085821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  if (migrated > 0) {
2095821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    VLOG(1) << "Migrated " << migrated << " passwords to native store.";
2105821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  } else if (migrated == 0) {
2115821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    // As long as we are able to migrate some passwords, we know the native
2125821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    // store is working. But if there is nothing to migrate, the "migration"
2135821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    // can succeed even when the native store would fail. In this case we
2145821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    // allow a later fallback to the default store. Once any later operation
2155821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    // succeeds on the native store, we will no longer allow fallback.
2165821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    allow_fallback_ = true;
2175821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  } else {
2185821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    LOG(WARNING) << "Native password store migration failed! " <<
2195821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                 "Falling back on default (unencrypted) store.";
2205821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    backend_.reset(NULL);
2215821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
2225821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
2235821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
2245821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)bool PasswordStoreX::allow_default_store() {
2255821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  if (allow_fallback_) {
2265821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    LOG(WARNING) << "Native password store failed! " <<
2275821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                 "Falling back on default (unencrypted) store.";
2285821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    backend_.reset(NULL);
2295821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    // Don't warn again. We'll use the default store because backend_ is NULL.
2305821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    allow_fallback_ = false;
2315821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
2325821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  return !backend_.get();
2335821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
2345821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
2355821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)ssize_t PasswordStoreX::MigrateLogins() {
2365821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  DCHECK(backend_.get());
2375821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  vector<PasswordForm*> forms;
2385821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  bool ok = PasswordStoreDefault::FillAutofillableLogins(&forms) &&
2395821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      PasswordStoreDefault::FillBlacklistLogins(&forms);
2405821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  if (ok) {
2415821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    // We add all the passwords (and blacklist entries) to the native backend
2425821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    // before attempting to remove any from the login database, to make sure we
2435821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    // don't somehow end up with some of the passwords in one store and some in
2445821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    // another. We'll always have at least one intact store this way.
2455821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    for (size_t i = 0; i < forms.size(); ++i) {
2465821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      if (!backend_->AddLogin(*forms[i])) {
2475821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)        ok = false;
2485821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)        break;
2495821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      }
2505821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    }
2515821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    if (ok) {
2525821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      for (size_t i = 0; i < forms.size(); ++i) {
2535821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)        // If even one of these calls to RemoveLoginImpl() succeeds, then we
2545821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)        // should prefer the native backend to the now-incomplete login
2555821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)        // database. Thus we want to return a success status even in the case
2565821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)        // where some fail. The only real problem with this is that we might
2575821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)        // leave passwords in the login database and never come back to clean
2585821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)        // them out if any of these calls do fail.
2595821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)        PasswordStoreDefault::RemoveLoginImpl(*forms[i]);
2605821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      }
2615821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      // Finally, delete the database file itself. We remove the passwords from
2625821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      // it before deleting the file just in case there is some problem deleting
2635821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      // the file (e.g. directory is not writable, but file is), which would
2645821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      // otherwise cause passwords to re-migrate next (or maybe every) time.
2655821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)      DeleteAndRecreateDatabaseFile();
2665821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)    }
2675821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  }
2685821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  ssize_t result = ok ? forms.size() : -1;
2695821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  STLDeleteElements(&forms);
2705821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  return result;
2715821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
2725821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
2735821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#if !defined(OS_MACOSX) && !defined(OS_CHROMEOS) && defined(OS_POSIX)
2745821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
2757dbb3d5cf0c15f500944d211057644d6a2f37371Ben Murdochvoid PasswordStoreX::RegisterProfilePrefs(
276c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)    user_prefs::PrefRegistrySyncable* registry) {
2775821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  // Normally we should be on the UI thread here, but in tests we might not.
278c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)  registry->RegisterBooleanPref(
279c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)      prefs::kPasswordsUseLocalProfileId,
280c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)      // default: passwords don't use local ids
281c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)      false,
282c2e0dbddbe15c98d52c4786dac06cb8952a8ae6dTorne (Richard Coles)      user_prefs::PrefRegistrySyncable::UNSYNCABLE_PREF);
2835821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
2845821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
2855821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
2865821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)bool PasswordStoreX::PasswordsUseLocalProfileId(PrefService* prefs) {
2875821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  // Normally we should be on the UI thread here, but in tests we might not.
2885821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  return prefs->GetBoolean(prefs::kPasswordsUseLocalProfileId);
2895821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
2905821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
2915821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)namespace {
2925821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// This function is a hack to do something not entirely thread safe: the pref
2935821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// service comes from the UI thread, but it's not ref counted. We keep a pointer
2945821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// to it on the DB thread, and need to invoke a method on the UI thread. This
2955821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// function does that for us without requiring ref counting the pref service.
2965821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// TODO(mdm): Fix this if it becomes a problem. Given that this function will
2975821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// be called once ever per profile, it probably will not cause a problem...
2985821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void UISetPasswordsUseLocalProfileId(PrefService* prefs) {
2995821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  prefs->SetBoolean(prefs::kPasswordsUseLocalProfileId, true);
3005821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
3015821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}  // anonymous namespace
3025821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)
3035821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)// static
3045821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)void PasswordStoreX::SetPasswordsUseLocalProfileId(PrefService* prefs) {
3055821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  // This method should work on any thread, but we expect the DB thread.
3065821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  DCHECK(BrowserThread::CurrentlyOn(BrowserThread::DB));
3075821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)  BrowserThread::PostTask(BrowserThread::UI, FROM_HERE,
3085821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)                          base::Bind(&UISetPasswordsUseLocalProfileId, prefs));
3095821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)}
3105821806d5e7f356e8fa4b058a389a808ea183019Torne (Richard Coles)#endif  // !defined(OS_MACOSX) && !defined(OS_CHROMEOS) && defined(OS_POSIX)
311